This table shows the 21 compliance areas where ISO 27001 and DORA controls overlap. When you mark a control as implemented in either framework, Venvera automatically propagates the status to the equivalent control in the other.

Compliance AreaISO 27001DORA
EncryptionA.8.24ict-10
Access ControlA.5.15ict-11
Identity ManagementA.5.16ict-11
Authentication & MFAA.5.17, A.8.5ict-11
Network SecurityA.8.20, A.8.21, A.8.22ict-09
Vulnerability ManagementA.8.8ict-12
Logging & MonitoringA.8.15, A.8.16ict-14
Incident ManagementA.5.24, A.5.25, A.5.26inc-01
Post-Incident ReviewA.5.27inc-08
Business ContinuityA.5.29, A.5.30ict-15
Backup & RestorationA.8.13ict-16
Third-Party Risk ManagementA.5.19, A.5.20tpr-01
Supplier Due DiligenceA.5.21tpr-03
Supplier ContractsA.5.20tpr-06, tpr-07
Supplier MonitoringA.5.22tpr-04
Risk AssessmentA.5.7ict-07
Information Security PolicyA.5.1ict-08
Security Awareness & TrainingA.6.3ict-18
Change ManagementA.8.32ict-13
Security TestingA.5.35res-01
Configuration ManagementA.8.9ict-04
ℹ️
For details on how propagation works, thresholds, and the auto-mapped badge, see the Cross-Framework Control Propagation overview article.